New cloud worm “PCPJack” targets exposed infrastructure for credential theft.• Docker & Kubernetes targeted• API keys and SSH secrets harvested• Telegram-based C2 observed• No cryptomining payloads
Uncategorized
1
Posts
1
Posters
0
Views
-
New cloud worm “PCPJack” targets exposed infrastructure for credential theft.
• Docker & Kubernetes targeted
• API keys and SSH secrets harvested
• Telegram-based C2 observed
• No cryptomining payloads
Cloud Credential Worm ‘PCPJack’ Targets TeamPCP Victims
PCPJack is a cloud worm that evicts TeamPCP tools and steals credentials from Kubernetes, Docker, Anthropic, and OpenAI environments.
TechNadu (www.technadu.com)
Are credential-focused cloud attacks the new norm?
#InfoSec #CloudSecurity #CyberSecurity

-
R relay@relay.infosec.exchange shared this topic